StackRadar

CVE-2024-34156

High

Advisory

Published 6 Sept 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.011
65th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,325
of 17,790 indexed, latest versions
Container images
2,784
deployed by those charts
Fix available
9 of 10
affected packages

Red Hat Security Advisory: skopeo security update

Carried by container images the latest versions of 2,325 of 17,790 indexed charts deploy, on 2,784 images.

Affected packageAffected versionsFixed inImages
skopeorpm2:1.11.2-0.1.el9, 2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.11.2-0.3.module+el8.8.0+22332+2132e5c3, 2:1.16.1-2.el9_52
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-66.module+el8.8.0+22332+2132e5c31
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.15-4.module+el8.8.0+22332+2132e5c31
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.11-1.module+el8.8.0+22332+2132e5c31
git-lfsrpm2.13.3-3.el8_60:3.4.1-3.el8_101
golang-1.19deb1.19.8-2no fix listed1
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-1.module+el8.8.0+22332+2132e5c31
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-1.module+el8.8.0+22332+2132e5c31
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.0-3.module+el8.8.0+22332+2132e5c31
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+134 more1.22.72,784
OSV records
DEBIAN-CVE-2024-34156RHSA-2024:11217RHSA-2024:7135RHSA-2024:7769GO-2024-3106
Also known as
BIT-golang-2024-34156, RHSA-2024:7455, RHSA-2024:7821, RHSA-2024:8111

Charts affected

2,325 by stars
ChartLatestAffected imagesRadar Score
capi-kamaji-vsphere-fullclastixVerified publisher1.0.12 of 9See more

capi-kamaji-vsphere-full clastix 1.0.1

2 of the 9 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
registry.k8s.io/cloud-pv-vsphere/cloud-provider-vsphere:v1.32.0f9f4dfd733ab
stdlib@go1.23.0
1.22.7
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
stdlib@go1.21.5
1.22.7

Open the chart page →

5,991
capsule-rancher-addonclastixVerified publisher0.1.15 of 5See more

capsule-rancher-addon clastix 0.1.1

5 of the 5 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
clastix/capsule-rancher-addon:v0.1.143d301afbca8
stdlib@go1.19.2
1.22.7
quay.io/jetstack/cert-manager-cainjector:v1.11.05c3eb25b0854
stdlib@go1.19.5
1.22.7
quay.io/jetstack/cert-manager-controller:v1.11.0d429b6d696e0
stdlib@go1.19.5
1.22.7
quay.io/jetstack/cert-manager-ctl:v1.11.074611761f052
stdlib@go1.19.5
1.22.7
quay.io/jetstack/cert-manager-webhook:v1.11.06730d96fc382
stdlib@go1.19.5
1.22.7

Open the chart page →

7,126
kamajiclastixVerified publisher0.0.0+latest1 of 4See more

kamaji clastix 0.0.0+latest

1 of the 4 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
quay.io/coreos/etcd:v3.5.628cb0630cb85
stdlib@go1.16.15
1.22.7

Open the chart page →

4,652
kamaji-consoleclastixVerified publisher0.1.31 of 1See more

kamaji-console clastix 0.1.3

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/clastix/kamaji-console:v0.2.129ecf8d4fa65
stdlib@go1.22.2
1.22.7

Open the chart page →

2,761
kamaji-etcdclastixVerified publisher0.17.02 of 4See more

kamaji-etcd clastix 0.17.0

2 of the 4 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
cfssl/cfssl:latestc9018c2ddf0b
stdlib@go1.20.14
1.22.7
quay.io/coreos/etcd:v3.5.628cb0630cb85
stdlib@go1.16.15
1.22.7

Open the chart page →

12,082
vcloud-csiclastixVerified publisher1.6.04 of 5See more

vcloud-csi clastix 1.6.0

4 of the 5 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
stdlib@go1.16
1.22.7
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
stdlib@go1.16
1.22.7
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.22.7
registry.k8s.io/sig-storage/csi-resizer:v1.4.09ebbf9f023e7
stdlib@go1.17.3
1.22.7

Open the chart page →

7,413
kube-acp-stackcloudentity2.28.02 of 7See more

kube-acp-stack cloudentity 2.28.0

2 of the 7 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
stdlib@go1.21.13
1.22.7
gcr.io/cockroachlabs-helm-charts/cockroach-self-signer-cert:1.3e225fe7eaa55
stdlib@go1.13.14
1.22.7

Open the chart page →

21,034
openbankingcloudentity0.1.96 of 6See more

openbanking cloudentity 0.1.9

6 of the 6 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
cloudentity/openbanking-quickstart-bank:1.11.19402ec4b5016
stdlib@go1.15.14
1.22.7
cloudentity/openbanking-quickstart-configuration:1.11.18a1890eb8265
stdlib@go1.15.14
1.22.7
cloudentity/openbanking-quickstart-consent-admin-portal:1.11.1ee83cdd45b7b
stdlib@go1.15.2
1.22.7
cloudentity/openbanking-quickstart-consent-page:1.11.15728654cecb7
stdlib@go1.16.6
1.22.7
cloudentity/openbanking-quickstart-consent-self-service-portal:1.11.18ca94ae6acf4
stdlib@go1.15.2
1.22.7
cloudentity/openbanking-quickstart-financroo-tpp:1.11.1c04eb10c77b7
stdlib@go1.15.2
1.22.7

Open the chart page →

18,040
cloudflare-ddns-updatecloudflare-ddns-update0.1.21 of 1See more

cloudflare-ddns-update cloudflare-ddns-update 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/dploeger/cloudflare-ddns-update:v0.1.0ec06685b9ff4
stdlib@go1.22.4
1.22.7

Open the chart page →

1,338
cp4d-deployercloud-native-toolkit1.0.01 of 1See more

cp4d-deployer cloud-native-toolkit 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
containers-common@2:1-64.module+el8.8.0+18571+eed59fc4
criu@3.15-4.module+el8.8.0+19044+f9982fd8
fuse-overlayfs@1.11-1.module+el8.8.0+18634+9a268292
libslirp@4.4.0-1.module+el8.8.0+18060+3f21f2cc
runc@1:1.1.4-1.module+el8.8.0+18060+3f21f2cc
skopeo@2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c
slirp4netns@1.2.0-2.module+el8.8.0+18060+3f21f2cc
stdlib@go1.19.10
2:1-66.module+el8.8.0+22332+2132e5c3
0:3.15-4.module+el8.8.0+22332+2132e5c3
0:1.11-1.module+el8.8.0+22332+2132e5c3
0:4.4.0-1.module+el8.8.0+22332+2132e5c3
1:1.1.12-1.module+el8.8.0+22332+2132e5c3
2:1.11.2-0.3.module+el8.8.0+22332+2132e5c3
0:1.2.0-3.module+el8.8.0+22332+2132e5c3
1.22.7

Open the chart page →

25,513
ibm-toolkit-installcloud-native-toolkit0.3.01 of 1See more

ibm-toolkit-install cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
stdlib@go1.17.5
1.22.7

Open the chart page →

6,704
iteration-zerocloud-native-toolkit0.2.01 of 1See more

iteration-zero cloud-native-toolkit 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
stdlib@go1.18.1
1.22.7

Open the chart page →

6,930
pact-brokercloud-native-toolkit0.3.01 of 1See more

pact-broker cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
pactfoundation/pact-broker:2.101.0.0a3021fc42834
stdlib@go1.14.4
1.22.7

Open the chart page →

2,814
robot-shopcloud-native-toolkit1.1.12 of 12See more

robot-shop cloud-native-toolkit 1.1.1

2 of the 12 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
robotshop/rs-dispatch:latestde81f1d07b02
stdlib@go1.17
1.22.7
robotshop/rs-mongodb:latest119b545823cd
stdlib@go1.16.3
1.22.7

Open the chart page →

29,602
cloudpremcloudprem0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad2 of 6See more

cloudprem cloudprem 0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad

2 of the 6 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
stdlib@go1.20.12
1.22.7
ghcr.io/formancehq/dex:v1.0.4b803fbe1cdb8
stdlib@go1.19.1
1.22.7

Open the chart page →

18,374
ctrox-csi-s3cloudve0.1.01 of 4See more

ctrox-csi-s3 cloudve 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ctrox/csi-s3:v1.2.0-rc.23c72862bea3c
stdlib@go1.16.13
1.22.7

Open the chart page →

3,143
galaxycloudve6.8.61 of 3See more

galaxy cloudve 6.8.6

1 of the 3 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
tusproject/tusd:v1.13.0f8088058b80f
stdlib@go1.21.0
1.22.7

Open the chart page →

5,603
galaxy-cvmfs-csicloudve2.5.12 of 3See more

galaxy-cvmfs-csi cloudve 2.5.1

2 of the 3 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.10.1f25af73ee708
stdlib@go1.21.5
1.22.7
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
stdlib@go1.21.5
1.22.7

Open the chart page →

1,515
galaxy-depscloudve1.1.14 of 7See more

galaxy-deps cloudve 1.1.1

4 of the 7 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq-cluster-operator:1.14.0-scratch-r567ac64a9623a
stdlib@go1.17
1.22.7
bitnamilegacy/rmq-messaging-topology-operator:1.7.1-scratch-r33c26208691a1
stdlib@go1.17
1.22.7
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0f6717ce72a26
stdlib@go1.20.3
1.22.7
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
stdlib@go1.20.3
1.22.7

Open the chart page →

10,581
galaxykubemancloudve2.10.14 of 7See more

galaxykubeman cloudve 2.10.1

4 of the 7 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
galaxy/cloudman-server:lateste5c265fe9fcd
stdlib@go1.17.13
1.22.7
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0f6717ce72a26
stdlib@go1.20.3
1.22.7
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
stdlib@go1.20.3
1.22.7
registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8c825f3d5e28b
stdlib@go1.16.2
1.22.7

Open the chart page →

16,134
janisterminalcloudve0.1.01 of 2See more

janisterminal cloudve 0.1.0

1 of the 2 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
stdlib@go1.13.1
1.22.7

Open the chart page →

14,304
openstack-cinder-csicloudve1.2.01 of 5See more

openstack-cinder-csi cloudve 1.2.0

1 of the 5 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
k8scloudprovider/cinder-csi-plugin:latesta30c7a2a594a
stdlib@go1.17.10
1.22.7

Open the chart page →

2,068
proxyinjectorcloudve0.0.231 of 1See more

proxyinjector cloudve 0.0.23

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
stdlib@go1.13.1
1.22.7

Open the chart page →

2,853
metaflowcluster-deploy0.2.21 of 1See more

metaflow cluster-deploy 0.2.2

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
stdlib@go1.20.2
1.22.7

Open the chart page →

8,072
cluster-octopuscluster-octopus1.0.01 of 1See more

cluster-octopus cluster-octopus 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
cgtysylr/cluster-octopus:1.0.0aec0f8a38a77
stdlib@go1.20.8
1.22.7

Open the chart page →

1,040
clusterpedia-coreclusterpedia0.1.13 of 3See more

clusterpedia-core clusterpedia 0.1.1

3 of the 3 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/clusterpedia-io/clusterpedia/apiserver:v0.6.03d089d9078f8
stdlib@go1.19.4
1.22.7
ghcr.io/clusterpedia-io/clusterpedia/clustersynchro-manager:v0.6.082cc9a77f6d6
stdlib@go1.19.4
1.22.7
ghcr.io/clusterpedia-io/clusterpedia/controller-manager:v0.6.081669df338e0
stdlib@go1.19.4
1.22.7

Open the chart page →

3,132
d2-prometheus-exportercmacraeVerified publisher0.1.01 of 1See more

d2-prometheus-exporter cmacrae 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
cmacrae/d2-prometheus-exporter:v0.1.0fc5fecba436e
stdlib@go1.15
1.22.7

Open the chart page →

1,299
kovecmacraeVerified publisher0.2.01 of 1See more

kove cmacrae 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/cmacrae/kove:v0.2.0185bfaae750c
stdlib@go1.17
1.22.7

Open the chart page →

2,089
kove-deprecationscmacraeVerified publisher0.1.21 of 1See more

kove-deprecations cmacrae 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/cmacrae/kove:v0.1.0db1244edefc8
stdlib@go1.16
1.22.7

Open the chart page →

2,203
lgtmcmacraeVerified publisher0.1.01 of 1See more

lgtm cmacrae 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
cmacrae/lgtm:0.1.0dec8d490fe40
stdlib@go1.14.1
1.22.7

Open the chart page →

1,909
door-agentcnoVerified publisher3.0.155 of 15See more

door-agent cno 3.0.15

5 of the 15 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
beopenit/door-helm:v3.0.1b4d9f9bee224
stdlib@go1.19.13
1.22.7
beopenit/onboarding-operator-kubernetes:v3.0.275a48144e682
stdlib@go1.18.10
1.22.7
envoyproxy/ratelimit:6f5de117b6cb6e16f8c9
stdlib@go1.14.13
1.22.7
ghcr.io/projectcontour/contour:v1.30.0b12824d7eb58
stdlib@go1.22.5
1.22.7
quay.io/brancz/kube-rbac-proxy:v0.13.1738c854322f5
stdlib@go1.19.1
1.22.7

Open the chart page →

19,454
coderstudio-strapi-devcoderstudio-strapi-devVerified publisher0.0.11 of 3See more

coderstudio-strapi-dev coderstudio-strapi-dev 0.0.1

1 of the 3 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
rcdelacruz/my-strapi-app:js-amd6438007f358355
stdlib@go1.19.4
1.22.7

Open the chart page →

5,142
docker-composecoderstudio-strapi-devVerified publisher0.0.11 of 3See more

docker-compose coderstudio-strapi-dev 0.0.1

1 of the 3 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
rcdelacruz/my-strapi-app:js-amd6438007f358355
stdlib@go1.19.4
1.22.7

Open the chart page →

5,142
strapi-devcoderstudio-strapi-devVerified publisher0.0.11 of 3See more

strapi-dev coderstudio-strapi-dev 0.0.1

1 of the 3 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
rcdelacruz/my-strapi-app:js-amd6438007f358355
stdlib@go1.19.4
1.22.7

Open the chart page →

5,142
colecole1.4.21 of 1See more

cole cole 1.4.2

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ntakashi/cole:1.2.3f7b68bee2a68
stdlib@go1.20.11
1.22.7

Open the chart page →

838
traefik-forward-authcolearendt0.0.151 of 1See more

traefik-forward-auth colearendt 0.0.15

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:269a2c985d2c5
stdlib@go1.13.12
1.22.7

Open the chart page →

2,234
mysqlcomet-mysql-helmVerified publisher1.0.81 of 1See more

mysql comet-mysql-helm 1.0.8

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
library/mysql:8.4.2ac80b6e09e5b
stdlib@go1.18.2
1.22.7

Open the chart page →

1,055
cgrccommongroundregistratiecomponent0.1.01 of 3See more

cgrc commongroundregistratiecomponent 0.1.0

1 of the 3 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
conduction/cgrc-php:dev25415534d245
stdlib@go1.13.10
1.22.7

Open the chart page →

7,581
community-operator-v2community-operator-v21.0.01 of 2See more

community-operator-v2 community-operator-v2 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
zufardhiyaulhaq/community-operator-v2:v1.0.07f1bbbe114eb
stdlib@go1.17.12
1.22.7

Open the chart page →

1,544
conduction-uiconduction-ui0.1.01 of 6See more

conduction-ui conduction-ui 0.1.0

1 of the 6 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
conduction/conduction-ui-php:dev2744565516e8
stdlib@go1.13.10
1.22.7

Open the chart page →

12,915
consentbbconsentbbVerified publisher2023.12.41 of 5See more

consentbb consentbb 2023.12.4

1 of the 5 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
igrantio/bb-consent-api:2023.12.22d2ea6546ffe
stdlib@go1.18.8
1.22.7

Open the chart page →

3,181
betaalservicecontacten-catalog1.0.01 of 3See more

betaalservice contacten-catalog 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
conduction/betaalservice-php:latestece1ab544c57
stdlib@go1.13.10
1.22.7

Open the chart page →

7,218
contactmoment-componentcontactmoment-component0.1.01 of 4See more

contactmoment-component contactmoment-component 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
conduction/contactmoment-component-php:deve1d4ad1e22a8
stdlib@go1.13.10
1.22.7

Open the chart page →

8,417
containers-security-chartscontainers-security0.1.03 of 7See more

containers-security-charts containers-security 0.1.0

3 of the 7 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
falcosecurity/falco-driver-loader:0.33.11fe583eee4af
stdlib@go1.18.6
1.22.7
falcosecurity/falco-no-driver:0.33.10d427b8d5fc6
stdlib@go1.18.6
1.22.7
falcosecurity/falcosidekick:2.27.0828ee36cb13a
stdlib@go1.18.1
1.22.7

Open the chart page →

9,153
falcocontainers-security2.4.62 of 2See more

falco containers-security 2.4.6

2 of the 2 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
falcosecurity/falco-driver-loader:0.33.11fe583eee4af
stdlib@go1.18.6
1.22.7
falcosecurity/falco-no-driver:0.33.10d427b8d5fc6
stdlib@go1.18.6
1.22.7

Open the chart page →

2,541
conversor-temperaturaconversor-temperaturaVerified publisher0.1.01 of 1See more

conversor-temperatura conversor-temperatura 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
felipecs8/conversor-temperatura:v1f945423be36d
stdlib@go1.20.12
1.22.7

Open the chart page →

1,527
corteza-all-in-onecorteza0.1.01 of 2See more

corteza-all-in-one corteza 0.1.0

1 of the 2 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.08eb7a26605c9
stdlib@go1.19.13
1.22.7

Open the chart page →

4,691
cosmo-traefikcosmoVerified publisher0.9.11 of 2See more

cosmo-traefik cosmo 0.9.1

1 of the 2 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
library/traefik:v2.10.11489caffaedb
stdlib@go1.20.3
1.22.7

Open the chart page →

3,678
dev-code-servercosmoVerified publisher0.0.71 of 2See more

dev-code-server cosmo 0.0.7

1 of the 2 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
stdlib@go1.22.5
1.22.7

Open the chart page →

14,642
katibcowboysysopVerified publisher2.4.23 of 4See more

katib cowboysysop 2.4.2

3 of the 4 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
kubeflowkatib/katib-controller:v0.12.012a28c8a0b41
stdlib@go1.17.1
1.22.7
kubeflowkatib/katib-db-manager:v0.12.0db88bf09d88e
stdlib@go1.13.3
1.22.7
kubeflowkatib/katib-ui:v0.12.0129f0aaba976
stdlib@go1.17.1
1.22.7

Open the chart page →

6,563

Container images carrying it

2,784 by charts deploying them

A fixed version is listed for 9 of the 10 affected packages.

Container imageDigestPackageFixed inUsed by
istio/install-cni:1.10.32232f365aed6
stdlib@go1.16.6
1.22.7
1
istio/operator:1.10.3655eefa11c84
stdlib@go1.16.6
1.22.7
1
istio/operator:1.12.06cfce8a071b9
stdlib@go1.17.3
1.22.7
1
istio/operator:1.18.270f9d1fe5fff
stdlib@go1.20.6
1.22.7
1
istio/pilot:1.10.0294ca55bd1cc
stdlib@go1.16.4
1.22.7
1
istio/pilot:1.16.0ac0284d75ec9
stdlib@go1.19.3
1.22.7
1
istio/pilot:1.17.1ce9d87606701
stdlib@go1.20.1
1.22.7
1
istio/pilot:1.15.2db08d6963975
stdlib@go1.19.2
1.22.7
1
istio/pilot:1.10.3e7e110a421c2
stdlib@go1.16.6
1.22.7
1
istio/proxyv2:1.9.687a9db561d2e
stdlib@go1.15.13
1.22.7
1
istio/proxyv2:1.10.088c6c693e67a
stdlib@go1.16.4
1.22.7
1
istio/proxyv2:1.14.1df69c1a7af7c
stdlib@go1.18.2
1.22.7
1
itzg/mc-router:1.16.1bb552b59fb53
stdlib@go1.18.4
1.22.7
1
itzg/minecraft-server:latest8672e335dbef
stdlib@go1.22.2
1.22.7
1
itzg/minecraft-server:2026.9.1e8640538dac5
stdlib@go1.22.2
1.22.7
1
itzmanish/ecr-token-renew:latest02154d1c05b5
stdlib@go1.16.6
1.22.7
1
j0113/haven-compliancy-dashboard:1.3696cb8ca9f4e
stdlib@go1.17.2
1.22.7
1
jacobalberty/unifi:v7.1.664a3616625dda
stdlib@go1.18
1.22.7
1
jacobalberty/unifi:v7.4.162b3edc809a3ff
stdlib@go1.20.4
1.22.7
1
jaegertracing/all-in-one:1.2942822be7888b
stdlib@go1.17.3
1.22.7
1
jaegertracing/all-in-one:1.53.060e65bfffe1f
stdlib@go1.21.5
1.22.7
1
jaegertracing/all-in-one:1.42.07d32a4eddec7
stdlib@go1.19.5
1.22.7
1
jaegertracing/all-in-one:1.22.0ca6b73330616
stdlib@go1.15.8
1.22.7
1
jaegertracing/all-in-one:1.18db45c07f2e1b
stdlib@go1.14.4
1.22.7
1
jaegertracing/all-in-one:1.55f6b5d09073f1
stdlib@go1.22.0
1.22.7
1
jaegertracing/jaeger-collector:1.41.0ff81f0a9f63c
stdlib@go1.19.4
1.22.7
1
jaegertracing/jaeger-operator:1.61.03f036ec60e61
stdlib@go1.22.3
1.22.7
1
jaegertracing/jaeger-query:1.41.0b636f0f464bc
stdlib@go1.19.4
1.22.7
1
jdvalencia422/observabilitysec:latesta80b6e47a7b8
stdlib@go1.18.4
1.22.7
1
jenkins/jenkins:2.462.2-jdk1795313257a8cd
stdlib@go1.21.8
1.22.7
1
jenkins/jenkins:2.440.3-jdk17de4fea113221
stdlib@go1.21.8
1.22.7
1
jfwenisch/alpine-tor:latest9e6c229f953c
stdlib@go1.14.6
1.22.7
1
jhaals/yopass:11.17.026873480863b
stdlib@go1.20.5
1.22.7
1
jhaals/yopass:11.15.16bca8d5a4914
stdlib@go1.20.5
1.22.7
1
jhaals/yopass:11.4.69516e3b3e88c
stdlib@go1.19.1
1.22.7
1
jhidalgo3/kafka-offset-lag-for-prometheus:latest0390e155c46d
stdlib@go1.17.13
1.22.7
1
jkremser/log2rbac:v0.0.5e35cf56ef183
stdlib@go1.17.6
1.22.7
1
jmferrer/azure-devops-agent:latest030f68ec6998
stdlib@go1.13.5
1.22.7
1
joeelliott/cert-exporter:v2.7.0b4acd14642d0
stdlib@go1.14.15
1.22.7
1
juicedata/csi-dashboard:v0.23.03e4daf9626d5
stdlib@go1.20.11
1.22.7
1
juicedata/juicefs-csi-driver:v0.20.043978fc60798
stdlib@go1.18.10
1.22.7
1
juicedata/juicefs-csi-driver:v0.23.0d915e899e322
stdlib@go1.19.11
1.22.7
1
junktext/getting-started:1.0.5a70936c04aed
stdlib@go1.18.7
1.22.7
1
jupyterhub/k8s-image-awaiter:3.0.1-0.dev.git.6287.hbfb05cd6a395326989c3
stdlib@go1.18.10
1.22.7
1
k8scloudprovider/cinder-csi-plugin:latesta30c7a2a594a
stdlib@go1.17.10
1.22.7
1
k8scloudprovider/octavia-ingress-controller:v1.20.26ddf80b34265
stdlib@go1.15
1.22.7
1
kaiso/kom-operator:v2.2.0e0e22b928bdd
stdlib@go1.21.5
1.22.7
1
keelhq/keel:0.19.202ac4ea616c4
stdlib@go1.20.5
1.22.7
1
keptncontrib/prometheus-service:0.6.029969dd547de
stdlib@go1.13.7
1.22.7
1
keptn/distributor:0.8.36bc3df9e0d6a
stdlib@go1.16.2
1.22.7
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.